Machine Learning for Raw Network Traffic Detection

被引:7
|
作者
De Lucia, Michael [1 ]
Maxwell, Paul E. [2 ]
Bastian, Nathaniel D. [2 ]
Swami, Ananthram [1 ]
Jalaian, Brian [1 ]
Leslie, Nandi [1 ]
机构
[1] US Army Res Lab, Aberdeen Proving Ground, MD 21005 USA
[2] US Mil Acad, Army Cyber Inst, West Point, NY 10996 USA
关键词
CLASSIFICATION;
D O I
10.1117/12.2586114
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Increasingly cyber-attacks are sophisticated and occur rapidly, necessitating the use of machine learning techniques for detection at machine speed. However, the use of traditional machine learning techniques in cyber security requires the extraction of features from the raw network traffic. Thus, subject matter expertise is essential to analyze the network traffic and extract optimum features to detect a cyber-attack. Consequently, we propose a novel machine learning algorithm for malicious network traffic detection using only the bytes of the raw network traffic. The feature vector in our machine learning method is a structure containing the headers and a variable number of payload bytes. We propose a 1D-Convolutional Neural Network (1D-CNN) and Feed Forward Network for detection of malicious packets using raw network bytes. Additionally, we compare the performance of the proposed deep learning models with both a non-linear and linear Support Vector Machine and Multinomial Naive Bayes machine learning models. We leverage the UNSW-NB15 dataset for evaluation of our novel classifier using raw network traffic. Subsequently, the UNSW-NB15 packet captures are labeled based on correlation between a hash of the standard 5-tuple and time stamp in the CSV file containing the labels (viz., malicious or benign). Our novel 1D-CNN classifier achieves an accuracy and F1 score of 98.99%. Thus, our method demonstrates the utility of using raw network traffic coupled with machine learning and reduces the need for a subject matter expert to perform feature engineering.
引用
收藏
页数:10
相关论文
共 50 条
  • [21] Evaluation of Machine Learning Algorithms for Detection of Malicious Traffic in SCADA Network
    Rajesh, L.
    Satyanarayana, Penke
    JOURNAL OF ELECTRICAL ENGINEERING & TECHNOLOGY, 2022, 17 (02) : 913 - 928
  • [22] Anomalous Network Traffic Detection Based on CK Sketch and Machine Learning
    Chi, Yaping
    Xue, Defan
    Yue, Ziyan
    Wang, Zhiqiang
    Liang Jiaming
    CYBERSPACE SAFETY AND SECURITY, CSS 2022, 2022, 13547 : 225 - 243
  • [23] Anomaly Detection in Network Traffic Using Advanced Machine Learning Techniques
    Ness, Stephanie
    Eswarakrishnan, Vishwanath
    Sridharan, Harish
    Shinde, Varun
    Janapareddy, Naga Venkata Prasad
    Dhanawat, Vineet
    IEEE ACCESS, 2025, 13 : 16133 - 16149
  • [24] Intrusion Detection using Network Traffic Profiling and Machine Learning for IoT
    Ben Slimane, Jihane
    Abd-Elkawy, Eman H.
    Maqbool, Albia
    JOURNAL OF ELECTRICAL SYSTEMS, 2024, 20 (03) : 2140 - 2149
  • [25] Machine learning approaches to network intrusion detection for contemporary internet traffic
    Ilyas, Muhammad U.
    Alharbi, Soltan Abed
    COMPUTING, 2022, 104 (05) : 1061 - 1076
  • [26] RawPower: Deep Learning based Anomaly Detection from Raw Network Traffic Measurements
    Marin, Gonzalo
    Casas, Pedro
    Capdehourat, German
    SIGCOMM'18: PROCEEDINGS OF THE ACM SIGCOMM 2018 CONFERENCE: POSTERS AND DEMOS, 2018, : 75 - 77
  • [27] Robust genetic machine learning ensemble model for intrusion detection in network traffic
    Akhtar, Muhammad Ali
    Qadri, Syed Muhammad Owais
    Siddiqui, Maria Andleeb
    Mustafa, Syed Muhammad Nabeel
    Javaid, Saba
    Ali, Syed Abbas
    SCIENTIFIC REPORTS, 2023, 13 (01):
  • [28] Machine Learning in Cybersecurity: Advanced Detection and Classification Techniques for Network Traffic Environments
    Hassan, Samer El Hajj
    Duong-Trung, Nghia
    EAI Endorsed Transactions on Industrial Networks and Intelligent Systems, 2024, 11 (03)
  • [29] Robust genetic machine learning ensemble model for intrusion detection in network traffic
    Muhammad Ali Akhtar
    Syed Muhammad Owais Qadri
    Maria Andleeb Siddiqui
    Syed Muhammad Nabeel Mustafa
    Saba Javaid
    Syed Abbas Ali
    Scientific Reports, 13 (1)
  • [30] Cascade saccade machine learning network with hierarchical classes for traffic sign detection
    Liu, Zhanwen
    Qi, Mingyuan
    Shen, Chao
    Fang, Yong
    Zhao, Xiangmo
    SUSTAINABLE CITIES AND SOCIETY, 2021, 67 (67)